CVE-2006-4468

critical

Description

Multiple unspecified vulnerabilities in Joomla! before 1.0.11, related to unvalidated input, allow attackers to have an unknown impact via unspecified vectors involving the (1) mosMail, (2) JosIsValidEmail, and (3) josSpoofValue functions; (4) the lack of inclusion of globals.php in administrator/index.php; (5) the Admin User Manager; and (6) the poll module.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/28628

http://www.vupen.com/english/advisories/2006/3408

http://www.joomla.org/content/view/1843/74/

http://www.joomla.org/content/view/1841/78/

http://secunia.com/advisories/21666

Details

Source: Mitre, NVD

Published: 2006-08-31

Updated: 2021-10-01

Risk Information

CVSS v2

Base Score: 6.8

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:P

Severity: Medium

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical